• Tech News
    • Games
    • Pc & Laptop
    • Mobile Tech
    • Ar & Vr
    • Security
  • Startup
    • Fintech
  • Reviews
  • How To
What's Hot

Elementor #32036

January 24, 2025

The Redmi Note 13 is a bigger downgrade compared to the 5G model than you might think

April 18, 2024

Xiaomi Redmi Watch 4 is a budget smartwatch with a premium look and feel

April 16, 2024
Facebook Twitter Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook Twitter Instagram Pinterest VKontakte
Behind The ScreenBehind The Screen
  • Tech News
    1. Games
    2. Pc & Laptop
    3. Mobile Tech
    4. Ar & Vr
    5. Security
    6. View All

    Bring Elden Ring to the table with the upcoming board game adaptation

    September 19, 2022

    ONI: Road to be the Mightiest Oni reveals its opening movie

    September 19, 2022

    GTA 6 images and footage allegedly leak

    September 19, 2022

    Wild west adventure Card Cowboy turns cards into weird and silly stories

    September 18, 2022

    7 Reasons Why You Should Study PHP Programming Language

    October 19, 2022

    Logitech MX Master 3S and MX Keys Combo for Business Gen 2 Review

    October 9, 2022

    Lenovo ThinkPad X1 Carbon Gen10 Review

    September 18, 2022

    Lenovo IdeaPad 5i Chromebook, 16-inch+120Hz

    September 3, 2022

    It’s 2023 and Spotify Still Can’t Say When AirPlay 2 Support Will Arrive

    April 4, 2023

    YouTube adds very convenient iPhone homescreen widgets

    October 15, 2022

    Google finishes iOS 16 Lock Screen widgets rollout w/ Maps

    October 14, 2022

    Is Apple actually turning iMessage into AIM or is this sketchy redesign rumor for laughs?

    October 14, 2022

    MeetKai launches AI-powered metaverse, starting with a billboard in Times Square

    August 10, 2022

    The DeanBeat: RP1 simulates putting 4,000 people together in a single metaverse plaza

    August 10, 2022

    Improving the customer experience with virtual and augmented reality

    August 10, 2022

    Why the metaverse won’t fall to Clubhouse’s fate

    August 10, 2022

    How Apple privacy changes have forced social media marketing to evolve

    October 16, 2022

    Microsoft Patch Tuesday October Fixed 85 Vulnerabilities – Latest Hacking News

    October 16, 2022

    Decentralization and KYC compliance: Critical concepts in sovereign policy

    October 15, 2022

    What Thoma Bravo’s latest acquisition reveals about identity management

    October 14, 2022

    What is a Service Robot? The vision of an intelligent service application is possible.

    November 7, 2022

    Tom Brady just chucked another Microsoft Surface tablet

    September 18, 2022

    The best AIO coolers for your PC in 2022

    September 18, 2022

    YC’s Michael Seibel clarifies some misconceptions about the accelerator • DailyTech

    September 18, 2022
  • Startup
    • Fintech
  • Reviews
  • How To
Behind The ScreenBehind The Screen
Home»Tech News»Researchers find new ways to siphon sensitive data from “air-gapped” computers
Tech News

Researchers find new ways to siphon sensitive data from “air-gapped” computers

August 26, 2022No Comments4 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Researchers find new ways to siphon sensitive data from air-gapped computers
Share
Facebook Twitter LinkedIn Pinterest Email

Why it matters: In a world where cyberattacks can devastate critical infrastructure, governments, law enforcement, and public institutions use so-called “air-gapped” systems to prevent even the most ambitious attempts. That said, a team of Israeli security researchers still manages to regularly come up with ideas on how organizations may be able to improve their security posture.

For years, Israeli security researchers at Ben Gurion University have been busy looking for ways malicious actors can exploit physically isolated computers to exfiltrate sensitive data. The team headed by Dr. Mordechai Guri is well-known for finding novel and unorthodox methods of accessing so-called air-gapped systems.

Various techniques they have discovered include using computer RAM as a small Wi-Fi transmitter, manipulating display brightness to send ones and zeroes through security cameras, or tuning the speed of cooling fans to create vibrations that can be easily recorded using a smartphone.

The researchers have recently developed a pair of attack methods dubbed Gairoscope and EtherLED. As explained in the two associated research papers, these new exploits are a reminder that inventive hackers can work around even the strictest security measures using relatively simple principles.

As the name suggests, the Gairoscope attack relies on a smartphone gyroscope, a microelectromechanical (MEMS) device susceptible to mechanical oscillations. In this case, the researchers use a specially-crafted piece of malware that can output “covert acoustic sound waves” using computer speakers.

A smartphone gyroscope easily picks up these air vibrations but does require additional work. The researchers explain that many mobile apps use gyroscopes to enhance the user experience. So users are more likely to approve app access to the gyroscope than the microphone — a behavior that attackers can exploit.

See also  Twitter Blue subscribers on Android can now pay to remove the Spaces tab

Another benefit of this method is that there’s no visual indicator on iOS or Android for when the gyroscope is in use, while there is one that gives the user a heads-up when the microphone is active. This opens new avenues for the smartphone side of the exploit, such as injecting the malicious JavaScript code on a legitimate website or web app instead of jumping through hoops to run malware on the device.

The Gairoscope method allows an attacker to exfiltrate data at up to eight bits per second, faster than most known covert acoustic methods. It may not seem like much, but it should be enough to transmit valuable information such as passwords, storage encryption keys, and more.

Guri and his team were able to use an Android app to decode a message typed on the target computer in a few seconds (video above). However, a significant limitation is that the maximum distance for reliable transmission is eight meters (26 feet).

Securing against Gairoscope can be done by either prohibiting speaker use or filtering out resonance frequencies generated by air-gapped systems using a special audio filter.

The second attack method relies on the green and amber status and activity indicator LEDs found on many network adapters. Previously, Guri’s team had devised exploits based on activity lights found on hard disk drives, switches, Wi-Fi routers, and keyboards, with data transmission speeds of up to 6,000 bits per second.

EtherLED is a bit more tricky to pull off, as it requires a direct line of sight between the target device and any surveillance cameras the attacker might be able to compromise. It would also be possible for someone to use a drone to exfiltrate the sensitive data, provided the network activity lights face a window.

See also  Increasing Workload? Nine Ways Leaders Can Help Their Small Teams Avoid Overwhelm

Using security cameras is a lot more feasible, however. Last year, hackers accessed 150,000 cameras inside schools, hospitals, police stations, prisons, and companies like Tesla and Equinox. From there, all they’d have to do is record the blinking lights of an infected network interface card to steal data.

In the associated paper, Guri explains EtherLED can be used to leak a password in one second and an RSA key in a little less than a minute. The speed varies depending on the modulation used and whether the attackers could compromise the driver or the network card’s firmware. The maximum distance for reliable data transmission ranges from 10 to 100 meters, depending on the camera.

Mitigating against the attack can be done in several ways, ranging from covering the LEDs with black tape to deploying firmware-level countermeasures that scramble any visual signals the attackers may try to use.

As easy as it is to dismiss the possibility of attacks like Gairoscope and EtherLED occurring in the wild, this research is still essential. Over the past two years, we’ve seen reports detailing cyber espionage groups targeting air-gapped systems in South Korea and Japan.

Masthead credit: FLYD

Source link

AirGapped Computers data find researchers sensitive siphon Ways
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Oppo Find X7 Ultra review

February 23, 2024

3 Ways To Reduce Friction In Your Sales Process

September 23, 2023

Google Mourns Veteran Engineer Luiz André Barroso Who Invented the Modern Data Center

September 22, 2023

10 Ways To Secure A Mentor And Grow As An Entrepreneur

September 14, 2023
Add A Comment

Comments are closed.

Editors Picks

Post Malone to Hold ‘Twelve Carat Toothache’ Concert in VR Next Week – Road to VR

July 8, 2022

The best action anime of 2022 so far

September 10, 2022

What is the key to protecting IoT devices at the network’s edge?  

October 13, 2022

California’s Governor Gavin Newsom Vetoes State Ban on Driverless Trucks

September 24, 2023

Subscribe to Updates

Get the latest news and Updates from Behind The Scene about Tech, Startup and more.

Top Post

Elementor #32036

The Redmi Note 13 is a bigger downgrade compared to the 5G model than you might think

Xiaomi Redmi Watch 4 is a budget smartwatch with a premium look and feel

Behind The Screen
Facebook Twitter Instagram Pinterest Vimeo YouTube
  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2025 behindthescreen.uk - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.